SECURE KUBERNETES LIKE A PRO | HOW DEVSECOPS ENGINEERS SECURE Kubernetes ?

  Рет қаралды 17,482

Abhishek.Veeramalla

Abhishek.Veeramalla

Күн бұрын

Пікірлер: 100
@samikshasharma3544
@samikshasharma3544 8 ай бұрын
Thanks!
@AbhishekVeeramalla
@AbhishekVeeramalla 8 ай бұрын
Thanks for supporting the channel 😍
@kaverichowdary6637
@kaverichowdary6637 Жыл бұрын
East are West abhishek anna is best 😊
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
Haha
@rohanrustagi7857
@rohanrustagi7857 Жыл бұрын
So true anna
@gouravchhabra6142
@gouravchhabra6142 Жыл бұрын
Would like to add few security aspects which I have been using so hope others can also take them into consideration: 1. Applying k8s policies using KYVERNO to restrict security policies in k8s resources. 2. Using Manifest/Helm scanners tools like CHECKOV or DATREE to avoid any misconfigurations or vulnerabilities in them. 3. Using cluster scanners or RBAC Visulizers like KUBESCAPE. 4. Using Docker image signing and attestation tool like COSIGN. 5. Following CIS benchmarks for K8s or Cloud on which k8s hosted. 6. Securing Ingress using TLS. 7. Secrets Encryption using sealed secrets or external secret operator. 8. Using Distroless images for building containers.
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
1st point is covered in latest video Will do others soon. Thanks for sharing Gourav
@evansdanso2374
@evansdanso2374 Жыл бұрын
Abhishek, you're great!!! I have taken full DevOps classes but never understood a lot until I started following you! I came into Devops with a little IT background as a data analyst. Thank a lot!!! Can you do a short video to explain various web applications( Nginx, apache tomcat, etc) and how often DevOps Engineer encounter them..and other applications that DevOps Engineers most often deploy. Please 🙏...
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
Thanks and noted
@rohita9689
@rohita9689 Жыл бұрын
Papa you are giving such gifts that i can't even explain.. Thank you ❤
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
😍
@VikramSharvansh
@VikramSharvansh Жыл бұрын
Great efforts abhishek👏👏 Each & every video of u making the devops/Kubernetes learning journey simple & interesting. Thanks once again.
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
😍
@anjaliranot897
@anjaliranot897 Жыл бұрын
you have so muck knowlegde and patience to explain all concept so nicely
@SivakumarA-lx5dj
@SivakumarA-lx5dj Жыл бұрын
@Abhishek, Thanks a lot for your video on most awaited topic
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
Welcome
@princeraghu3807
@princeraghu3807 Жыл бұрын
Its very quality & valuable content brother😊
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
😍
@akhilc8211
@akhilc8211 Жыл бұрын
thank you anna my day finishes with your videos......
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
😍
@VaibhavSupe
@VaibhavSupe Жыл бұрын
Hello Abhishek. Thank you so much….really hat’s off you for such an amazing content with easily understandable language & your dedication🤩🤩🤩 If possible please make more such videos on Security / DevSecOps related topics. Thanks a lot 🤩🤩🤩
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
😍
@phaneerameswarareddychilum7189
@phaneerameswarareddychilum7189 Жыл бұрын
Abhisek your content is great and the way you teach is really superb. only one correction, I guess the image scan command is docker snyk not docker synk if I am correct. please correct me if I am wrong
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
U r correct .. sorry for the typo and mispronunciation
@KhanVit
@KhanVit 7 күн бұрын
Great video! Please I have a quick question: Why do DevOps engineers need to secure etcd and the API server when using EKS, AKS, or GKE? Isn't that the responsibility of the cloud provider?
@tanayabanerjee2380
@tanayabanerjee2380 9 ай бұрын
Hi,,, Please make the demo part on Rbac , Network policy and rest of the topics ...it will be very helpful 🙏🙏
@AbhishekVeeramalla
@AbhishekVeeramalla 9 ай бұрын
Sure
@nikhilmeshram4376
@nikhilmeshram4376 Жыл бұрын
beautiful explanation sir....... thank you so much....👌👌👌👌👌
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
❤️
@jackayuk424
@jackayuk424 4 ай бұрын
The best one best this space thanks a million sir ❤
@twizzoe
@twizzoe Жыл бұрын
@Abhishek, thanks for this detailed lecture. I need clarification on securing the API-SERVER. If we are using Amazon EKS, I thought since Amazon handles the control plane where the API-SERVER is located, it handles the security of every component involved. With this video, I am assuming we still need to take an extra step to secure it
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
Will cover that
@sonalimohapatra880
@sonalimohapatra880 Жыл бұрын
Yeah Abhishek bro is the best ❤❤
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
😍
@krishnakumarkumar5710
@krishnakumarkumar5710 Жыл бұрын
Good content for free is dream in this selfish world. But some worriers like Abhishek prove it wrong...
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
Thanks a lot
@tarunmeher5464
@tarunmeher5464 Жыл бұрын
Hey Abhishek.. Can you give us a trick or any plan that we can remember all these aws service, kubernetes topic so that it will be easy for the interview,, because there are so many topic on devops and not every one have sharp minded.. so hope you understand and give us a solution for this.. Thank you❤
@motivation2change754
@motivation2change754 24 күн бұрын
snyk and sysdig are the tool to scan images
@lakshmanababu4279
@lakshmanababu4279 4 ай бұрын
Thanks
@AbhishekVeeramalla
@AbhishekVeeramalla 4 ай бұрын
Thanks for contributing to the channel
@kundalakshmidevi4449
@kundalakshmidevi4449 9 ай бұрын
very nice explanation abhi sir but i have a doubt here you have mentioned docker scan in github repo but in video you said docker sync . Is it docker scan or docker sync??????
@AbhishekVeeramalla
@AbhishekVeeramalla 9 ай бұрын
synk is a tool that performs scanning on docker images. docker scan internally uses synk.
@rohithreddy6853
@rohithreddy6853 Жыл бұрын
Thnx anna If possible please do a video on how to make ATS resume for freshers on AWS with DevOps please anna
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
Noted
@ThecookBoy
@ThecookBoy Жыл бұрын
Hai Abhishek. Verramalla can we expect this in the practical video it might be helpful for a better understanding
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
It will be too lengthy .. I will think of something
@haroon.niamat
@haroon.niamat Жыл бұрын
Informative..!!👍
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
😍
@pjj7466
@pjj7466 4 ай бұрын
Fantastic session bro.
@ifirefox1
@ifirefox1 7 ай бұрын
Hi Abhishek, thank you so much for content, i am more focussed towards devsecops, should i finish your zero to hero kubernetes coarse before i start this video?
@AbhishekVeeramalla
@AbhishekVeeramalla 7 ай бұрын
If u don’t have understanding of k8s yes
@nishanthhg6437
@nishanthhg6437 Жыл бұрын
Thank you for all the contents
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
Welcome
@sth5287
@sth5287 Жыл бұрын
Hi abhishek, i love your content.. Can you please make a series on azure devops ??? Please.... Please...
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
Noted
@sth5287
@sth5287 Жыл бұрын
@@AbhishekVeeramalla thank you abhishek ♥️♥️
@saswatpriyabrat
@saswatpriyabrat Жыл бұрын
This is an excellent Video with a bundles of Knowledge....Thanks for this awesome Video ❤
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
😍
@ashuofficial28
@ashuofficial28 Жыл бұрын
Ingress graphana prompetus those all use in Aks na not in use those all in eks.
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
They are used in aws as well
@ketanmorey1953
@ketanmorey1953 Жыл бұрын
Abhishek bhai❤
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
Welcome
@khagolakalyan
@khagolakalyan Жыл бұрын
Nice Video...Can you Please explain the link between Google optimize and A/B testing with Kubernetes cluster and One more Keycloak.link.woth oidc..What's the link between these two..I m getting confused..
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
Ok noted
@khagolakalyan
@khagolakalyan Жыл бұрын
Thanks for your reply@@AbhishekVeeramalla ... Eagerly Waiting for your Video...😍😍
@kishorkhilare6375
@kishorkhilare6375 Жыл бұрын
Sir, Can you explain in hindi also
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
Many subscribers don’t understand hindi bro
@kodjoviamedimele3066
@kodjoviamedimele3066 Жыл бұрын
Hi sir. First of all thank you for the quality of your contents. I have an issue when implementing the cicd with Argo. I import the repo and when it comes to the Jenkins file I am lost. Wondering if you can go over how you configure it ?
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
Please watch the ultimate cicd pipeline viceo
@kodjoviamedimele3066
@kodjoviamedimele3066 Жыл бұрын
@@AbhishekVeeramalla I was doing it with the video but I didn’t see the part where you went through the Jenkins file configuration. I tried to figure out but with no success. I will try again today.
@jaganarumugam8527
@jaganarumugam8527 Жыл бұрын
Which part you faced issue..
@yuvichh
@yuvichh Жыл бұрын
31:00, is it Docker scout or Synk. I mean sync is another project and I can see the Docker Scout!
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
Snyk
@ganeshgoudru8444
@ganeshgoudru8444 Жыл бұрын
Hi Abhishek thanks for the video...one doubt the command is snyk or synk?
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
snyk , sorry for the typo
@ganeshgoudru8444
@ganeshgoudru8444 Жыл бұрын
@@AbhishekVeeramalla thanks Abhishek. Just wanted to clarify 😊
@shalubajpai4225
@shalubajpai4225 Жыл бұрын
Great videos Abhishek! Can you plz make videos on how to handle volume in kubernetes?
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
Noted
@ganeshgoudru8444
@ganeshgoudru8444 Жыл бұрын
Hi Abhishek, is it possible to make hands on in this video? Bcz usually in EKS we won’t be maintaining control plane right so how to implement security for eks clusters?
@twizzoe
@twizzoe Жыл бұрын
I would like to inquire if Vault can be used for encryption of the ETCD
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
I haven’t explored that much .. sorry
@senthilkumar5129
@senthilkumar5129 Жыл бұрын
Thank you
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
Welcome
@lakshmisucharitha3529
@lakshmisucharitha3529 10 ай бұрын
where is the practical sesion video for all these 7 security steps ? Can any one ping here the link
@delengr1026
@delengr1026 Жыл бұрын
Thanks
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
Welcome
@techairenglish1357
@techairenglish1357 Жыл бұрын
If I am using AKS, then is the API server is already secured since master node is managed by Azure or it is not required?
@nishanthhg6437
@nishanthhg6437 Жыл бұрын
First view sir
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
Thanks alot
@napoleanbonaparte9225
@napoleanbonaparte9225 Жыл бұрын
Pod container security kuda adutunaaru anna
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
Adi kuda cheddam aithe emundi
@averagebadmin10player
@averagebadmin10player Жыл бұрын
Cluster monitoring can't be done by Prometheus or grafana ?
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
For example ?
@averagebadmin10player
@averagebadmin10player Жыл бұрын
@@AbhishekVeeramalla 6th point of this video you told Sysdig works like a deamon set if some hacker is attacking in that way can't be done by prometheus and grafana ?
@DanielSmith-hd9iq
@DanielSmith-hd9iq Жыл бұрын
do you mean docker snyk here?
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
yes
@udaykumar-tb5kn
@udaykumar-tb5kn Жыл бұрын
Bro. This security of kubernetes playliat or devops hero zero playlist confused with which playlist and what order should be flowed pls tell
@AbhishekVeeramalla
@AbhishekVeeramalla Жыл бұрын
This video is not part of devops zero to hero. Please check again. This is only part of kubernetes playlist and if u want to learn kubernetes advanced u need to Learn this
@udaykumar-tb5kn
@udaykumar-tb5kn Жыл бұрын
@@AbhishekVeeramalla understood bro thanks lot for detailed explanation
Apple peeling hack @scottsreality
00:37
_vector_
Рет қаралды 127 МЛН
Electric Flying Bird with Hanging Wire Automatic for Ceiling Parrot
00:15
Do NOT Learn Kubernetes Without Knowing These Concepts...
13:01
Travis Media
Рет қаралды 290 М.
Kubernetes Hacking: From Weak Applications to Cluster Control
36:22
Kubernetes RBAC Explained
23:17
Anton Putra
Рет қаралды 11 М.
RBAC in Kubernetes
20:27
Pavan Elthepu
Рет қаралды 34 М.
Kubernetes Security Best Practices 2021 (From Container Specialist)
17:01